The information in this article applies to:
SYMPTOMSMicrosoft Remote Access Service (RAS) client software may allow a user with the proper permissions to mount a denial-of-service attack or elevate his or her privileges on a RAS client computer. CAUSE
This behavior occurs because the RAS client component that processes phonebook entries has an unchecked buffer. As a result, a specially malformed RAS phonebook entry can cause the RAS client to crash. RESOLUTIONTo resolve this problem, obtain the latest service pack for Windows NT 4.0 or
the individual software update. For information on obtaining the
latest service pack, please go to:
-or- http://www.microsoft.com/support/supportnet/overview/overview.asp This hotfix has been posted to the following Internet location as Rasffixi.exe (x86) and Rasffixa.exe (Alpha): ftp://ftp.microsoft.com/bussys/winnt/winnt-public/fixes/usa/NT40/hotfixes-postSP5/RAS-fix/ STATUSMicrosoft has confirmed this to be a problem in the Microsoft products listed at the beginning of this article. This problem was first corrected in Windows NT 4.0 Service Pack 6. MORE INFORMATION
This vulnerability affects only computers running the RAS client software; it does not affect RAS servers. A user must have permission to add or modify phonebook entries to initiate an attack. Permissions can be set using the phonebook's access control list (ACL).
http://www.microsoft.com/security/ Additional query words:
Keywords : kbbug4.00 kbfix4.00 |
Last Reviewed: October 28, 1999 © 2000 Microsoft Corporation. All rights reserved. Terms of Use. |